copumpkin has quit [Quit: Textual IRC Client: www.textualapp.com]
adisbladis has quit [Ping timeout: 245 seconds]
<andi-> I wish we would just get something like unveil instead but at least people start working on access restrictions to get rid of some of the string parsing otherwise required:
<ckauhaus> cleaning up some old 17.09 vuln roundups - I doubt anyone gonna fix this stuff
<ckauhaus> lol
<ckauhaus> vulnix found a super old issue in tetex (CVE-2005-3624)
<ckauhaus> no idea why this is popping up right now
<ckauhaus> #48054
<{^_^}> https://github.com/NixOS/nixpkgs/issues/48054 (by ckauhaus, 3 minutes ago, open): Vulnerability roundup 48 (release-18.03)
<andi-> ckauhaus: NVD Last Modified:
<andi-> 10/03/2018
<andi-> thats why ;)
<andi-> someone has probably changed/fixed the CPE entries
<ckauhaus> yeah
<ckauhaus> perhaps CVE-2018-15173 (nmap) is more interesting
<ckauhaus> no bugfix release right now though
<andi-> That reminds me of implementing a proper CPE parser and not the ugly hack I am using right now..
<ckauhaus> andi-: do you go to NixCon?
<ckauhaus> would be a great place to discuss some security infrastructure questions
r5d has quit [Quit: WeeChat 2.2]
<andi-> ckauhaus: yes ill be there. We already talked briefly last year. You might not associate me with a face tho..
<ckauhaus> not sure ... I've talked to so many people last year
<ckauhaus> anyway
<ckauhaus> looking forward :)
<ckauhaus> things have evolved quite a bit, so it might be a good idea to see where we can combine efforts to improve security tooling
<andi-> Yep
r5d has joined #nixos-security
ckauhaus has quit [Quit: WeeChat 2.0]